CVE-2020-5598: High severity mitsubishi electric coreos vulnerability
TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains an improper access control vulnerability, which may which may allow a remote attacker tobypass access restriction and stop the network functions of the products or execute a malicious program via a specially crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5598?
CVE-2020-5598 is an improper access control vulnerability in the TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model).
How severe is CVE-2020-5598?
CVE-2020-5598 has a severity rating of 7.5 (high).
Which software versions are affected by CVE-2020-5598?
The affected software versions are CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model of Mitsubishi Electric GOT2000 series.
How can this vulnerability be exploited?
This vulnerability can be exploited by a remote attacker to bypass access restrictions and disrupt the operation of the affected devices.
Is there a fix available for CVE-2020-5598?
Yes, Mitsubishi Electric has released a patch to address this vulnerability. Refer to their advisory for more information.